CVE-2025-0665
Haxx Curl 8.11.1
Public PoC
CVSS Score v3.1
7.0
Click a component to see what it means
Raw vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:H
EPSS Score
0.013
67th percentile
Summary
CVE-2025-0665 is a high-severity an unspecified weakness vulnerability in Haxx Curl. Its CVSS base score is 7.0 (High).
Operationally, ranked in the top 33% of CVEs by exploit likelihood; it is not currently listed in the CISA KEV catalog; a public proof-of-concept is referenced.
EU & UK References
- 🇪🇺 ENISA EUVD: EUVD-2025-1809
Vulnerability Data
libcurl would wrongly close the same eventfd file descriptor twice when taking down a connection channel after having completed a threaded name resolve.
- CWE(s)
Related Threats
CVEs Like This One
CVE-2024-2466Same product: Haxx Curl
CVE-2024-11053Same product: Haxx Curl
CVE-2025-0167Same product: Haxx Curl
CVE-2024-8096Same product: Haxx Curl
CVE-2023-23915Same product: Haxx Curl
CVE-2023-28320Same product: Haxx Curl
CVE-2023-28319Same product: Haxx Curl
CVE-2023-23914Same product: Haxx Curl
CVE-2024-2004Same product: Haxx Curl
CVE-2024-2379Same product: Haxx Curl
Affected Assets
haxx
curl
8.11.1
netapp
bootstrap os
all versions
netapp
h300s firmware
all versions
netapp
h410c firmware
all versions
netapp
h410s firmware
all versions
netapp
h500s firmware
all versions
netapp
h700s firmware
all versions
Mitigating Controls
No mitigating controls mapped yet. The per-CVE control annotator has not reached this CVE.